Part 1: Hacking Triathlon (Active Directory)

- Learn ethical hacking @ https://hacksmarter.org - In this video, I start working through the "Triathlon" multi-machine Active Directory lab from Hack Smarter. Identifying the Active Directory Domain Controller by scanning for open Kerberos ports with Nmap Uncovering the target network's internal domain name through RDP service enumeration Configuring the local /etc/hosts file for proper domain resolution across the lab subnet Leveraging open-source intelligence (OSINT) to collect the target team roster names Utilizing a username permutation script to build a custom account wordlist Conducting Kerberos-based username enumeration via Kerbroot to validate active domain accounts Establishing an initial user baseline with discovered valid accounts for downstream targeting And much more... Enjoy!